2026 CVE Vulnerabilities
56,195 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-23175 | HIGH | 7 | 0.1% | Feb 14, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: cpsw: Execute ndo_set_rx_mode callback in a wo... |
| CVE-2026-23171 | HIGH | 7.8 | 0.1% | Feb 14, 2026 | In the Linux kernel, the following vulnerability has been resolved: bonding: fix use-after-free due to enslave fail aft... |
| CVE-2026-23162 | HIGH | 7.8 | 0.1% | Feb 14, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/xe/nvm: Fix double-free on aux add failure Aft... |
| CVE-2026-23158 | HIGH | 7.8 | 0.1% | Feb 14, 2026 | In the Linux kernel, the following vulnerability has been resolved: gpio: virtuser: fix UAF in configfs release path T... |
| CVE-2026-23156 | HIGH | 7.8 | 0.1% | Feb 14, 2026 | In the Linux kernel, the following vulnerability has been resolved: efivarfs: fix error propagation in efivar_entry_get... |
| CVE-2026-1843 | HIGH | 7.2 | 0.2% | Feb 14, 2026 | The Super Page Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Activity Log in all versi... |
| CVE-2026-2024 | HIGH | 7.5 | 0.5% | Feb 14, 2026 | The PhotoStack Gallery plugin for WordPress is vulnerable to SQL Injection via the 'postid' parameter in all versions up... |
| CVE-2026-1988 | HIGH | 7.5 | 0.8% | Feb 14, 2026 | The Flexi Product Slider and Grid for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion in all vers... |
| CVE-2026-0753 | HIGH | 7.2 | 0.3% | Feb 14, 2026 | The Super Simple Contact Form plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'sscf_name' p... |
| CVE-2026-2469 | HIGH | 7.6 | 0.4% | Feb 14, 2026 | Versions of the package directorytree/imapengine before 1.22.3 are vulnerable to Improper Neutralization of Special Elem... |
| CVE-2026-2144 | HIGH | 8.1 | 0.5% | Feb 14, 2026 | The Magic Login Mail or QR Code plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and in... |
| CVE-2026-0692 | HIGH | 7.5 | 0.3% | Feb 14, 2026 | The BlueSnap Payment Gateway for WooCommerce plugin for WordPress is vulnerable to Missing Authorization in all versions... |
| CVE-2026-1844 | HIGH | 7.2 | 0.3% | Feb 13, 2026 | The PixelYourSite PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'pysTrafficSource' param... |
| CVE-2026-1841 | HIGH | 7.2 | 0.3% | Feb 13, 2026 | The PixelYourSite – Your smart PIXEL (TAG) & API Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripti... |
| CVE-2026-26334 | HIGH | 7.8 | 0.1% | Feb 13, 2026 | Calero VeraSMART versions prior to 2026 R1 contain hardcoded static AES encryption keys within Veramark.Framework.dll (V... |
| CVE-2026-26269 | HIGH | 7.5 | 0.3% | Feb 13, 2026 | Vim is an open source, command line text editor. Prior to 9.1.2148, a stack buffer overflow vulnerability exists in Vim'... |
| CVE-2026-2441 | HIGH | 8.8 | 22.0% | Feb 13, 2026 | Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside... |
| CVE-2026-26264 | HIGH | 8.1 | 0.4% | Feb 13, 2026 | BACnet Stack is a BACnet open source protocol stack C library for embedded systems. Prior to 1.5.0rc4 and 1.4.3rc2, a ma... |
| CVE-2026-26208 | HIGH | 7.8 | 0.2% | Feb 13, 2026 | ADB Explorer is a fluent UI for ADB on Windows. Prior to Beta 0.9.26020, ADB Explorer is vulnerable to Insecure Deserial... |
| CVE-2026-26187 | HIGH | 8.1 | 0.4% | Feb 13, 2026 | lakeFS is an open-source tool that transforms object storage into a Git-like repositories. Prior to 1.77.0, the local bl... |
| CVE-2026-25991 | HIGH | 7.7 | 0.3% | Feb 13, 2026 | Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. Prior to 2.5.1, the... |
| CVE-2026-21878 | HIGH | 7.5 | 0.4% | Feb 13, 2026 | BACnet Stack is a BACnet open source protocol stack C library for embedded systems. Prior to 1.5.0.rc3, a vulnerability ... |
| CVE-2026-23111 | HIGH | 7.8 | 0.5% | Feb 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix inverted genmask check in... |
| CVE-2026-1619 | HIGH | 8.3 | 0.3% | Feb 13, 2026 | Authorization Bypass Through User-Controlled Key vulnerability in Universal Software Inc. FlexCity/Kiosk allows Exploita... |
| CVE-2026-1618 | HIGH | 8.8 | 0.4% | Feb 13, 2026 | Authentication Bypass Using an Alternate Path or Channel vulnerability in Universal Software Inc. FlexCity/Kiosk allows ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now